Skip to main content

Apple iOS Zero-day Sensitive Information Disclosure Vulnerability

Last Update Date: 30 Jan 2019 10:24 Release Date: 30 Jan 2019 5328 Views

RISK: High Risk

TYPE: Operating Systems - Mobile & Apps

TYPE: Mobile & Apps

A new zero-day vulnerability was discovered in Apple iOS FaceTime. This vulnerablity allow callers to hear audio and perhaps video without answering the call, even after actively dismissing the call. A remote user can exploit this vulnerability to trigger sensitive information disclosure on the targeted system.


Impact

  • Information Disclosure

System / Technologies affected

  • iOS 12.1 or later

Solutions

Notes: No patch is currently available.

 

Apple has taken Group FaceTime offline until a fix can be provided.

Recommend disable FaceTime in iOS Settings until a fix can be provided.

 

Please refer to the link below for security update:

https://support.apple.com/en-us/HT201222

 

 


Vulnerability Identifier

  • No CVE information is available

Related Link